<!DOCTYPE html>
<html>
<head>
</head>
<meta http-equiv="Content-Security-Policy" content="upgrade-insecure-requests">
<body>
  <iframe src="/cross-site/a.com/mixed-content/basic-passive.html"></iframe>
</body>
</html>
